Most Common Obfuscation Techniques In Fake AV Pages
ID: 1068d107-7a88-522e-a3a0-bcd5aef8fa6b
STIX ID: report--1068d107-7a88-522e-a3a0-bcd5aef8fa6b
Feed Name: Zscaler Security Research Blog
Threat Score
This blog post analyzes Fake AV malicious webpages and their evasion/obfuscation techniques — including HTML entity encoding of content and attributes, random whitespace insertion, hex-encoded inline CSS and JavaScript, and light JavaScript obfuscation — used to frustrate IDS/antivirus signature detection; the author reports over 100 variants and highlights that attackers focus on detection evasion rather than concealing code.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
